CVE-2012-5691

RealNetworks RealPlayer <16.0.0.282-1.1.5 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2012-5691. PoCs published by Metasploit, including Metasploit module exploits/windows/fileformat/real_player_url_property_bof.

AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in RealPlayer <=15.0.6.14 via a malicious .rm file. It leverages the insecure usage of GetPrivateProfileString to trigger the vulnerability, achieving remote code execution.

Description

Buffer overflow in RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a crafted RealMedia file.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/23694

This Metasploit module exploits a stack-based buffer overflow in RealPlayer <=15.0.6.14 via a malicious .rm file. It leverages the insecure usage of GetPrivateProfileString to trigger the vulnerability, achieving remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: RealPlayer <=15.0.6.14
No auth needed
Prerequisites: Victim interaction to open the malicious .rm file
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/real_player_url_property_bof.rb

This Metasploit module exploits a stack-based buffer overflow in RealPlayer <=15.0.6.14 via a malicious .rm file, leveraging insecure handling of the URL property in InternetShortcut sections. It uses SEH overwrites and a short jump to trigger payload execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: RealPlayer <=15.0.6.14
No auth needed
Prerequisites: Victim must open the malicious .rm file via double-click or drag-and-drop
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References

Scores

EPSS 0.5270
EPSS Percentile 98.8%

Details

CWE
CWE-119
Status published
Products (44)
realnetworks/realplayer 4
realnetworks/realplayer 5
realnetworks/realplayer 6
realnetworks/realplayer 7
realnetworks/realplayer 8
realnetworks/realplayer 10.0
realnetworks/realplayer 10.5
realnetworks/realplayer 11.0
realnetworks/realplayer 11.0.1
realnetworks/realplayer 11.0.2
... and 34 more
Published Dec 19, 2012
Tracked Since Feb 18, 2026